Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in Nokia Networks (formerly Nokia Solutions and Networks and Nokia Siemens Networks) @vantage Commander allow remote attackers to inject arbitrary web script or HTML via the (1) idFilter or (2) nameFilter parameter to cftraces/filter/fl_copy.jsp; the (3) flName parameter to cftraces/filter/fl_crea1.jsp; the (4) serchStatus, (5) refreshTime, or (6) serchNode parameter to cftraces/process/pr_show_process.jsp; the (7) MaxActivationTime, (8) NumberOfBytes, (9) NumberOfTracefiles, (10) SessionName, or (11) serchSessionkind parameter to cftraces/session/se_crea.jsp; the (12) serchSessionDescription parameter to cftraces/session/se_show.jsp; the (13) serchApplication or (14) serchApplicationkind parameter to cftraces/session/tr_crea_filter.jsp; the (15) columKeyUnique, (16) columParameter, (17) componentName, (18) criteria1, (19) criteria2, (20) criteria3, (21) description, (22) filter, (23) id, (24) pathName, (25) tableName, or (26) component parameter to cftraces/session/tr_create_tagg_para.jsp; or the (27) userid parameter to home/certificate_association.jsp.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Nokia Solutions and Networks @vantage Commander 多个跨站脚本漏洞
Vulnerability Description
Nokia Solutions and Networks(前称Nokia Siemens Networks)@vantage Commander是芬兰Nokia Solutions and Networks公司的一套用于帮助移动网络运行多服务的的解决方案。 Nokia Solutions and Networks @vantage Commander中存在多个跨站脚本漏洞,这些漏洞源于多个脚本没有充分过滤参数。远程攻击者可利用这些漏洞注入任意Web脚本或HTML。(cftraces/filter/fl_c
CVSS Information
N/A
Vulnerability Type
N/A